OTL Extras logfile created on: 21/10/2013 16:43:15 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\revo\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16721) Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy 5,96 Gb Total Physical Memory | 4,25 Gb Available Physical Memory | 71,31% Memory free 6,90 Gb Paging File | 4,86 Gb Available in Paging File | 70,39% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 457,88 Gb Total Space | 408,85 Gb Free Space | 89,29% Space Free | Partition Type: NTFS Drive D: | 457,88 Gb Total Space | 457,65 Gb Free Space | 99,95% Space Free | Partition Type: NTFS Drive F: | 1002,97 Mb Total Space | 776,02 Mb Free Space | 77,37% Space Free | Partition Type: FAT Computer Name: VERONIQUE | User Name: revo | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1719896619-412699797-303963199-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- C:\Windows\SysWow64\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- C:\Windows\SysWow64\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01D88842-C954-458C-964E-34D30838FF6E}" = dir=in | name=@{microsoft.reader_6.2.9200.20780_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{09FE0D48-5E27-4F72-A5AF-D66BB7B4DD78}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe | "{0A0F8A3D-B827-45DE-B3FB-94C082704DAD}" = dir=out | name=7digital music store | "{0D78727D-D02D-4212-ACE5-64C9A98043E0}" = dir=out | name=shark dash | "{0DECC9F2-5176-47DA-B9DB-DF6C93D71557}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{0E9D2E4D-5BE4-4B8A-82BD-BD3770B219C2}" = protocol=17 | dir=in | app=c:\users\revo\appdata\roaming\utorrent\utorrent.exe | "{120CDFFA-3802-41F9-9834-49578B47C86E}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\clear.fi media\windowsupnpmv.exe | "{14A5A1E4-480D-4D77-B724-ACFF43E9EF43}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\acer cloud\ccd.exe | "{172A98F2-790B-442F-A0E0-AF645ADADC27}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\acer cloud\virtualdrive.exe | "{1753AF05-6F3D-4581-B3AC-16EAFED7B814}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\clear.fi media\dmcdaemon.exe | "{18F0D2AF-4316-4462-87FF-8A6F1910EC74}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\acer cloud\ccd.exe | "{1B4A0B34-02BC-460F-AB01-C2672334AEA2}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{208B03CC-FB99-41A2-A570-6E54F67995D5}" = protocol=6 | dir=in | app=c:\program files (x86)\nero\nero 12\nero backitup\backitup.exe | "{217C531B-F207-4F1A-89A5-A2006DC87400}" = protocol=6 | dir=in | app=c:\users\revo\appdata\roaming\utorrent\utorrent.exe | "{2404A749-EED0-4C5E-A74A-733D6FA017AC}" = dir=out | name=microsoft minesweeper | "{270D5C8C-7397-4383-8412-C3DBE5E08821}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\clear.fi media\windowsupnpmv.exe | "{28B4B289-6235-4456-B259-5794E4012E15}" = dir=in | app=c:\program files (x86)\acer\clear.fi sdk21\movie\playmovie.exe | "{2C067139-183B-49A9-B535-47C253D0BB88}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{2CE6B72E-33F3-4BC9-98D3-B5BEEE09C179}" = dir=in | app=c:\program files (x86)\acer\clear.fi sdk21\video\videoplayer.exe | "{2DC998D3-8E58-4D94-B4D0-299A63E4F2F0}" = dir=out | name=weatherbug.a | "{2E5AF2A3-3193-457C-8505-D11ED06D8F23}" = dir=out | name=@{microsoft.xboxlivegames_1.3.10.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{2FDABA7D-5AEC-4287-81DE-13907F8B4582}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\acer cloud\sdd.exe | "{382CCA27-EA17-4297-866F-B5730CBFA6A0}" = dir=out | name=windows_ie_ac_001 | "{38B893CD-27FF-41EB-B7DA-640D76D663F7}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe | "{3C016786-D7A6-4F4F-871A-32E4D780B418}" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\data\spotifywebhelper.exe | "{3C50891C-4C8D-4AFE-B5BE-1F5650A7161D}" = dir=out | name=@{microsoft.bingtravel_2.0.0.308_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{3E937E3E-8D0A-45A5-BB92-501508FB501B}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe | "{3F5F77B4-C18D-4403-9F35-D5B02D23AF72}" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\data\spotifywebhelper.exe | "{445FFED8-D89C-4831-8562-A117E0DB3E1F}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\clear.fi photo\windowsupnp.exe | "{4974433E-17FD-4C5E-BA19-AD21AB0071FB}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\clear.fi media\dmcdaemon.exe | "{4CE9A0C0-A2D6-429D-8E30-9021BD8AD536}" = dir=out | name=@{microsoft.bingmaps_1.6.1821.2624_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{4F99AB42-1654-4249-870E-73ECA4861FE6}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{567C1147-0B92-4396-8274-2578118CA390}" = dir=out | name=@{microsoft.bingnews_2.0.0.308_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{58FE55D7-A654-460D-80C7-84FFE7B3D91E}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe | "{608DFB6C-722F-4D48-AE2E-8E29667057FE}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{61ECA307-3E84-4683-A2FC-021E213F7E0A}" = dir=out | name=microsoft solitaire collection | "{6E0F92F6-34C1-47AB-9C17-C3BDD4D387DE}" = dir=out | name=txtr reader | "{6F3CED26-F882-4E5E-BEB5-3794F94AE7D6}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\acer cloud\virtualdrive.exe | "{706D2300-26EE-4E0C-9EE8-84A740A3284D}" = protocol=17 | dir=in | app=c:\program files (x86)\nero\nero 12\nero backitup\backitup.exe | "{7147FDD6-39C9-462B-9208-ECC71D2F7A20}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqcopy2.exe | "{73CCEC81-997E-42B6-831C-CA78E809D2FE}" = dir=in | name=pinball fx2 | "{7A22FCF2-0DD4-4051-9C8C-C3ED86AE2E55}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\clear.fi photo\windowsupnp.exe | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{82D47A83-24B5-4D90-9898-D0226580F5D3}" = dir=out | name=pinball fx2 | "{83AC478B-80C7-4DA2-9898-B9B85B5B0244}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe | "{8474FA9D-CAAB-40B1-9C5D-B4C2EA1D1C26}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{91867F4B-D4B0-441E-80C9-DB6DE6E4B2D6}" = dir=out | name=@{microsoft.bingfinance_2.0.0.308_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{92EBA635-12B3-4A2B-A0FC-05AEFB748CAF}" = protocol=6 | dir=in | app=c:\program files (x86)\acer\clear.fi photo\dmcdaemon.exe | "{93926CE6-F57F-4C7A-B64D-6D50E2D44DE5}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\clear.fi photo\dmcdaemon.exe | "{93D31E71-B0B5-400D-B896-A4E5B8F3CA0B}" = dir=out | name=wordament | "{940770E6-C227-4DCC-9057-B2579052807E}" = dir=out | name=tunein radio | "{96AF3234-8D90-422F-BAA0-49335D844F80}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe | "{979FA64A-26EB-4A10-84CA-154F8C88192C}" = dir=in | name=skype | "{97F5A16D-F76D-421D-8271-9911FCDCB4B4}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{9838954C-6AC7-485A-AB42-D2A2B241D247}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe | "{9B63238F-5AC7-4F1E-AEB2-4B0E0FD0E58F}" = protocol=17 | dir=in | app=c:\program files (x86)\acer remote\arcserver.exe | "{9B6595BC-E956-442D-BC47-26452AE7580D}" = dir=out | name=@{microsoft.windowsphotos_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{9C1E96DF-57DD-4CC5-A956-4F96DEBAA6E1}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqnrs08.exe | "{9F4282C7-851D-430E-B4DD-A8149FB65224}" = dir=out | name=newsxpresso | "{A1436BD7-CFDB-45D7-B971-2BEB3351193B}" = dir=in | name=@{microsoft.windowsphotos_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{B4C31297-8D79-4C31-911F-FC0E9ACBF8B0}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe | "{B794B18F-D1E8-445A-A181-0BB95B4AF61C}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe | "{BD2FE6EB-D730-487C-A5F7-4AFAEB16E486}" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\spotify.exe | "{C2DC9C11-2770-4CC6-B76E-9BBF092B9F69}" = dir=out | name=@{microsoft.bingsports_2.0.0.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{C5A54DE5-484F-4179-876E-AC5EA9152D2F}" = dir=out | name=microsoft mahjong | "{C7DED8C7-DECB-4BAB-B801-2025832BBCCB}" = dir=out | name=the treasures of montezuma 3 | "{D0700E10-3500-4737-9A6E-93B0206B6491}" = dir=in | name=newsxpresso | "{D37CE067-BF55-4F5A-AD4F-B867C6D85387}" = dir=out | name=taptiles | "{D6B58E3A-E1F5-4DF5-8A88-D59C7E365200}" = protocol=6 | dir=in | app=c:\program files (x86)\acer remote\arcserver.exe | "{D79D0A82-47F4-4AAF-A931-1CCCA1722B98}" = dir=out | name=@{microsoft.bing_1.5.1.259_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{D7FF5042-19E8-4B0E-A440-1F8EFBED8237}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{D88C3557-EB49-45F8-8ECC-D8F65DAD2877}" = dir=out | name=@{microsoft.zunemusic_1.4.18.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{DE11641A-DF15-4643-B429-6F935D98603D}" = dir=out | name=@{microsoft.bingweather_2.0.0.310_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{DFC5CA63-94E4-4BAF-94A0-95F7F8EF22B3}" = dir=out | name=- games app - | "{E38F745C-5838-4F23-AFEB-00D12B78AC2B}" = dir=out | name=skype | "{E75EB1BA-5587-45BA-8A44-797789DBCAC4}" = dir=out | name=@{microsoft.reader_6.2.9200.20780_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{EADA7529-3FAD-47C2-A81B-5906C2BB39B4}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe | "{EB13BD29-3DFA-47F8-B3FD-284EB3AA8F61}" = dir=out | name=cut the rope | "{F2959FB5-6D07-4197-A199-EDD9E761EF58}" = dir=in | app=c:\program files (x86)\acer\clear.fi sdk21\video\musicplayer.exe | "{F39DCAEF-89DC-46FC-9828-B1A8E368D416}" = dir=out | name=acer explorer | "{F3AD99CB-C546-406A-B489-516F4DED635F}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{F54059F0-31BD-4599-B465-BC0027ABB328}" = protocol=17 | dir=in | app=c:\program files (x86)\acer\acer cloud\sdd.exe | "{FBADDAC9-BBEC-4CAF-B2CC-EA1E2E7F0F04}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe | "{FC333122-92CC-4E2C-B7AE-1564F172C7A1}" = dir=out | name=ebay | "{FC6C8DD5-E253-4CC0-9653-7B129A2A7DCC}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{FF3C2B3C-9DF6-4417-9268-22B66BD27335}" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\spotify.exe | "{FF9EDFD5-9EFE-44E9-A917-858465C680E3}" = dir=in | name=acer explorer | "TCP Query User{9F97C36F-C4BF-4540-92F6-A4403D641125}C:\program files (x86)\acer remote\arcserver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\acer remote\arcserver.exe | "UDP Query User{41C7EC1D-57DB-4EED-9A40-9C2A5F5CD0A3}C:\program files (x86)\acer remote\arcserver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\acer remote\arcserver.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}" = Acer Recovery Management "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{2CB8566A-8EA6-417A-BAB1-1B10A88C79BB}" = HP Deskjet All-In-One Software "{4E5AC9F2-19C8-0CA1-034B-A3056AD67E1C}" = ccc-utility64 "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{91F52DE4-B789-42B0-9311-A349F10E5479}" = Acer Power Management "{E3047FA0-2D6B-4BD6-8CD4-599955F1CE9D}" = Centre Souris et Claviers Microsoft "{E3A51D8F-668B-4D7B-8CF5-99D00F89A4A5}" = AMD Catalyst Install Manager "{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64 "{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer "HP Imaging Device Functions" = HP Imaging Device Functions 14.0 "HP Solution Center & Imaging Support Tools" = HP Solution Center 14.0 "HPExtendedCapabilities" = HP Customer Participation Program 14.0 "HPOCR" = OCR Software by I.R.I.S. 14.0 "Microsoft Mouse and Keyboard Center" = Centre Souris et Claviers Microsoft "Shop for HP Supplies" = Shop for HP Supplies [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan "{0B311221-05A5-4766-8D03-7A6446794156}" = Nero RescueAgent Help (CHM) "{0E4630AF-0AB7-440E-A978-1A78FC4F43B9}" = Nero Launcher "{104066F4-5897-4067-85D3-4C88B67CCF75}" = AIO_Scan "{1398DDAD-B984-275D-C61E-A1C5152450F8}" = CCC Help Finnish "{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery "{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1FCC073B-CC01-4443-AD20-E559F66E6E83}" = Office Addin 2003 "{1FF18EF2-2B14-CCFD-56FE-C5A84F66689C}" = CCC Help Hungarian "{232F1B14-7126-491F-AC8C-6123BA58FDE2}" = QuickShare "{27D49E0E-422F-C9D3-56BC-CF0881C7A477}" = CCC Help Chinese Standard "{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox "{2E8B87B9-DBD2-B5A1-B1A7-C4228CFC193A}" = CCC Help Thai "{2EE2F065-4B50-F7C4-5F6D-DA25874A0D0B}" = CCC Help Russian "{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App "{35DA427D-BB23-49B8-9AFD-CFFCFE3B708D}" = clear.fi SDK- Movie 2 "{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}" = McAfee SiteAdvisor "{388E4B09-3E71-4649-8921-F44A3A2954A7}" = Microsoft Visual Studio 2005 Tools for Office Runtime "{3AAB08A3-F129-4BD5-B409-AE674F93759D}" = Prerequisite installer "{3D9CB654-99AD-4301-89C6-0D12A790767C}" = Identity Card "{3F80D43E-2D98-EDD3-EBD6-2C14FA31EEB5}" = AMD VISION Engine Control Center "{4CA8F973-6377-4ABF-9ED5-CC2323B3C000}" = Nero BackItUp 12 Essentials OEM.a01 "{4DEE1489-ED1A-93BF-8EEF-6888A7846697}" = Catalyst Control Center InstallProxy "{4E7C28C7-D5DA-4E9F-A1CA-60490B54AE35}" = UnloadSupport "{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}" = Status "{5C3AF724-B144-4AC1-B2CB-FB6D447116F1}" = F4100 "{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update "{6A450C9E-E017-4881-01F9-BD1E242E2AF0}" = CCC Help Dutch "{6B60CF02-C313-3384-5A75-F8D548398803}" = CCC Help Turkish "{6D2BBE1D-E600-4695-BA37-0B0E605542CC}" = Office Addin "{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer" = WildTangent Games App "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8A9FC225-75F6-4B5D-911C-0ED230565643}" = HP Product Detection "{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg "{8FB53850-246A-3507-8ADE-0060093FFEA6}" = Visual Studio Tools for the Office system 3.0 Runtime "{90150000-0138-0409-0000-0000000FF1CE}" = Microsoft Office "{904BD3AD-0841-8364-08D6-A41F48FAE30E}" = CCC Help Chinese Traditional "{907B4640-266B-4A21-92FB-CD1A86CD0F63}" = RollerCoaster Tycoon 3 "{91589413-6675-4C27-8AFC-EFB9103B90A5}" = eBay Worldwide "{9669A51F-16AA-9DCB-6756-CEF9E140EC9C}" = CCC Help Korean "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B362566-EC1B-4700-BB9C-EC661BDE2175}" = DocProc "{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}" = Copy "{9CA44AD4-B6B1-956C-92FF-043178C9CAE5}" = CCC Help Danish "{A2433A63-5F5D-40E5-B529-9123C2B3E734}" = Anno 1701 "{A2D43081-CF7B-4637-A9F3-E2651AA5C4A8}" = Nero RescueAgent "{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}" = AcerCloud Portal "{A6B90148-02C5-4fd3-8D7A-EF2386835CB9}" = F4100_Help "{A6DC88AD-501A-44BC-884D-57435F972E2C}" = Hotkey Utility "{ABC88553-8770-4B97-B43E-5A90647A5B63}" = Nero ControlCenter "{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}" = HPSSupply "{ACD89BA8-EAA8-4D7F-F61C-4C072CEC354B}" = CCC Help Japanese "{AD3317DB-5E17-C2E9-6E76-215157DF1792}" = CCC Help English "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update "{B5AD89F2-03D3-4206-8487-018298007DD0}" = Acer Photo "{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2 "{BC41D891-531E-FC55-CDD8-C1CDFABE13D3}" = CCC Help Swedish "{BC5DD87B-0143-4D14-AAE6-97109614DC6B}" = SolutionCenter "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations "{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}" = Nero Core Components "{C5C00116-FFD7-465e-8316-6055F320E7E5}" = DJ_AIO_NS_LP_DocCD "{C8DA89DA-C203-EEF3-281E-E34AB1F2CC81}" = Catalyst Control Center Localization All "{C8DB7D14-11F3-9B81-27C4-BEB7C11D3107}" = CCC Help Spanish "{C994C746-C6D0-4EBA-B09E-DF7B18381B69}" = Nero ControlCenter Help (CHM) "{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}" = Acer Docs "{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget "{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp "{CED122AA-03DA-E301-FE04-98784421E639}" = CCC Help French "{D322A9E3-758B-4D60-A7C4-65C88FD378D0}" = Bing Bar "{D360FA88-17C8-4F14-B67F-13AAF9607B12}" = MarketResearch "{D7CDAC3E-0962-41D6-829D-6AB524120B43}" = DJ_AIO_ProductContext "{DA2D3078-A58C-45E8-8EE0-18B8BE6B34F7}" = Nero BackItUp "{E342E703-8D0F-AAAD-FF90-0EBB60CF9C3A}" = CCC Help Greek "{E3739848-5329-48E3-8D28-5BBD6E8BE384}" = CyberLink MediaEspresso 6.5 "{E9AF1707-3F3A-49E2-8345-4F2D629D0876}" = Acer Media "{EB8464D8-D611-4A2E-5962-DB47A70E4B73}" = CCC Help German "{EBA33CAD-E071-48d5-A168-FBA4EEB42E93}" = clear.fi SDK - Video 2 "{EBE0919B-F97B-4D58-9B1D-9EEA3003718D}" = Catalyst Control Center - Branding "{EE26E302-876A-48D9-9058-3129E5B99999}" = Live Updater "{EED759C0-F201-4422-86FA-264075B882ED}" = DJ_AIO_Software_min "{EF0D1292-8FC1-41BE-9740-DBC134F66415}" = Nero BackItUp Help (CHM) "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F2C4B91A-250C-4A68-94EB-9643151F892B}" = DJ_AIO_Software "{F486E5F2-0300-FDA0-BE59-C8CE3CAC8165}" = CCC Help Portuguese "{F546ACF6-5427-F740-FC98-EBDC65A018AB}" = CCC Help Polish "{F61D13C7-7209-0AD0-6584-1FCE625EBB11}" = CCC Help Italian "{F7AFD54C-285E-E3D8-D17F-BE1C24403AF0}" = CCC Help Norwegian "{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm "{FE705EB4-D4F1-3B0C-8965-798B8B2FC0E8}" = CCC Help Czech "a2zLyrics-1" = a2zLyrics-1 "Acer Remote1.0" = Acer Remote "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Avira AntiVir Desktop" = Avira Free Antivirus "bi_uninstaller" = Bundled software uninstaller "Glary Utilities 3" = Glary Utilities 3.9.2 "InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}" = CyberLink MediaEspresso 6.5 "Microsoft Visual Studio 2005 Tools for Office Runtime" = Visual Studio 2005 Tools pour Office Second Edition Runtime "Mozilla Firefox 24.0 (x86 fr)" = Mozilla Firefox 24.0 (x86 fr) "MozillaMaintenanceService" = Mozilla Maintenance Service "MS Access 97 SP2" = MS Access 97 SP2 "Spotify" = Spotify "uTorrent" = µTorrent "Visual Studio Tools for the Office system 3.0 Runtime" = Visual Studio Tools for the Office system 3.0 Runtime "Wajam" = Wajam "WildTangent wildgames Master Uninstall" = WildTangent Games "WinRAR archiver" = WinRAR 4.20 (32-bit) "WTA-238eaf30-45dc-443c-92ea-e6fcd52fef8b" = Tales of Lagoona "WTA-55188ce7-e47e-45a9-bb24-b6827b047d05" = Delicious: Emily's Childhood Memories Premium Edition "WTA-a151000c-efc8-4dfa-90be-07f86a2278fb" = Magic Academy "WTA-ac874f06-b02e-466a-a3ae-50c2a3648eae" = Bejeweled 3 "WTA-b1e84c48-6793-463d-af8c-9bb9ddf7c029" = Governor of Poker 2 Premium Edition "WTA-cca8b6a0-107f-418a-a111-6f278259f953" = Plants vs. Zombies - Game of the Year "WTA-ee8d685e-0840-42a9-879c-846a0f8c8c12" = Jewel Match 3 "WTA-f0579243-6756-4dcc-90f8-d64e7e224683" = John Deere Drive Green [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1719896619-412699797-303963199-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 15/10/2013 13:18:55 | Computer Name = veronique | Source = Application Hang | ID = 1002 Description = Le programme firefox.exe version 24.0.0.5001 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 1938 Heure de début : 01cec9c9df8f5c5f Heure de fin : 4294967295 Chemin d’accès de l’application : C:\Program Files (x86)\Mozilla Firefox\firefox.exe ID de rapport : dba513e9-35bd-11e3-bec9-7427ea5e547b Nom complet du package défaillant : ID de l’application relative au package défaillant : Error - 15/10/2013 15:07:53 | Computer Name = veronique | Source = ESENT | ID = 489 Description = DllHost (1560) WebCacheLocal: Une tentative d'ouverture du fichier "C:\Users\revo\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" pour accès en lecture seule a échoué en indiquant l'erreur système 32 (0x00000020) : "Le processus ne peut pas accéder au fichier car ce fichier est utilisé par un autre processus. ". L'opération d'ouverture de fichier échouera en indiquant l'erreur -1032 (0xfffffbf8). Error - 15/10/2013 15:07:53 | Computer Name = veronique | Source = ESENT | ID = 490 Description = taskhostex (1636) WebCacheLocal: Une tentative d'ouverture du fichier "C:\Users\revo\AppData\Local\Microsoft\Windows\WebCache\V01.log" pour accès en lecture/écriture a échoué en indiquant l'erreur système 32 (0x00000020) : "Le processus ne peut pas accéder au fichier car ce fichier est utilisé par un autre processus. ". L'opération d'ouverture de fichier échouera en indiquant l'erreur -1032 (0xfffffbf8). Error - 15/10/2013 15:07:53 | Computer Name = veronique | Source = ESENT | ID = 454 Description = taskhostex (1636) WebCacheLocal: La récupération/restauration de la base de données a échoué avec l'erreur inattendue -1032. Error - 16/10/2013 08:58:15 | Computer Name = veronique | Source = SideBySide | ID = 16842824 Description = La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Acer\Office Addin 2003\ExcelAddIn2003.dll.Manifest ». Erreur dans le fichier de manifeste ou de stratégie « C:\Program Files (x86)\Acer\Office Addin 2003\ExcelAddIn2003.dll.Manifest » à la ligne 4. L’élément asmv2:clrClassInvocation apparaît comme un enfant de l’élément urn:schemas-microsoft-com:asm.v1^entryPoint ; cette situation n’est pas prise en charge par cette version de Windows. Error - 16/10/2013 08:58:15 | Computer Name = veronique | Source = SideBySide | ID = 16842824 Description = La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Acer\Office Addin 2003\WordAddIn2003.dll.Manifest ». Erreur dans le fichier de manifeste ou de stratégie « C:\Program Files (x86)\Acer\Office Addin 2003\WordAddIn2003.dll.Manifest » à la ligne 4. L’élément asmv2:clrClassInvocation apparaît comme un enfant de l’élément urn:schemas-microsoft-com:asm.v1^entryPoint ; cette situation n’est pas prise en charge par cette version de Windows. Error - 16/10/2013 08:58:15 | Computer Name = veronique | Source = SideBySide | ID = 16842824 Description = La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Acer\Office Addin 2003\PowerPointAddIn2003.dll.Manifest ». Erreur dans le fichier de manifeste ou de stratégie « C:\Program Files (x86)\Acer\Office Addin 2003\PowerPointAddIn2003.dll.Manifest » à la ligne 4. L’élément asmv2:clrClassInvocation apparaît comme un enfant de l’élément urn:schemas-microsoft-com:asm.v1^entryPoint ; cette situation n’est pas prise en charge par cette version de Windows. Error - 16/10/2013 08:59:20 | Computer Name = veronique | Source = SideBySide | ID = 16842824 Description = La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Acer\Office Addin 2003\ExcelAddIn2003.dll.Manifest ». Erreur dans le fichier de manifeste ou de stratégie « C:\Program Files (x86)\Acer\Office Addin 2003\ExcelAddIn2003.dll.Manifest » à la ligne 4. L’élément asmv2:clrClassInvocation apparaît comme un enfant de l’élément urn:schemas-microsoft-com:asm.v1^entryPoint ; cette situation n’est pas prise en charge par cette version de Windows. Error - 16/10/2013 08:59:20 | Computer Name = veronique | Source = SideBySide | ID = 16842824 Description = La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Acer\Office Addin 2003\WordAddIn2003.dll.Manifest ». Erreur dans le fichier de manifeste ou de stratégie « C:\Program Files (x86)\Acer\Office Addin 2003\WordAddIn2003.dll.Manifest » à la ligne 4. L’élément asmv2:clrClassInvocation apparaît comme un enfant de l’élément urn:schemas-microsoft-com:asm.v1^entryPoint ; cette situation n’est pas prise en charge par cette version de Windows. Error - 16/10/2013 08:59:20 | Computer Name = veronique | Source = SideBySide | ID = 16842824 Description = La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Acer\Office Addin 2003\PowerPointAddIn2003.dll.Manifest ». Erreur dans le fichier de manifeste ou de stratégie « C:\Program Files (x86)\Acer\Office Addin 2003\PowerPointAddIn2003.dll.Manifest » à la ligne 4. L’élément asmv2:clrClassInvocation apparaît comme un enfant de l’élément urn:schemas-microsoft-com:asm.v1^entryPoint ; cette situation n’est pas prise en charge par cette version de Windows. [ System Events ] Error - 17/10/2013 11:34:37 | Computer Name = veronique | Source = Service Control Manager | ID = 7000 Description = Le service Explorateur d’ordinateurs n’a pas pu démarrer en raison de l’erreur : %%3 Error - 17/10/2013 11:34:37 | Computer Name = veronique | Source = Service Control Manager | ID = 7000 Description = Le service Explorateur d’ordinateurs n’a pas pu démarrer en raison de l’erreur : %%3 Error - 17/10/2013 11:34:37 | Computer Name = veronique | Source = Service Control Manager | ID = 7000 Description = Le service Explorateur d’ordinateurs n’a pas pu démarrer en raison de l’erreur : %%3 Error - 17/10/2013 11:34:37 | Computer Name = veronique | Source = Service Control Manager | ID = 7000 Description = Le service Explorateur d’ordinateurs n’a pas pu démarrer en raison de l’erreur : %%3 Error - 17/10/2013 11:34:37 | Computer Name = veronique | Source = Service Control Manager | ID = 7000 Description = Le service Explorateur d’ordinateurs n’a pas pu démarrer en raison de l’erreur : %%3 Error - 17/10/2013 11:34:37 | Computer Name = veronique | Source = Service Control Manager | ID = 7000 Description = Le service Explorateur d’ordinateurs n’a pas pu démarrer en raison de l’erreur : %%3 Error - 17/10/2013 11:34:37 | Computer Name = veronique | Source = Service Control Manager | ID = 7000 Description = Le service Explorateur d’ordinateurs n’a pas pu démarrer en raison de l’erreur : %%3 Error - 17/10/2013 11:34:37 | Computer Name = veronique | Source = Service Control Manager | ID = 7000 Description = Le service Explorateur d’ordinateurs n’a pas pu démarrer en raison de l’erreur : %%3 Error - 17/10/2013 11:34:37 | Computer Name = veronique | Source = Service Control Manager | ID = 7000 Description = Le service Explorateur d’ordinateurs n’a pas pu démarrer en raison de l’erreur : %%3 Error - 17/10/2013 11:34:37 | Computer Name = veronique | Source = Service Control Manager | ID = 7000 Description = Le service Explorateur d’ordinateurs n’a pas pu démarrer en raison de l’erreur : %%3 < End of report >